Steps: Set Up Sana for Workday
You might need to take additional steps to enable this feature based on your organization's subscription service agreement. Your organization is either on the Main Service Agreement (MSA) or the Universal Main Service Agreement (UMSA). To determine your organization's subscription service agreement:
- Select your profile avatar on Workday Community.
- SelectProfile.
- On your profile page, select your organization's name, which is beneath your name and next to your job title.
- View yourSubscription Service Agreementvalue.
If the value is:
- UMSA, the feature is automatically available. Keep data contributions enabled to ensure full agent functionality. For more information on Machine Learning data contributions, see Concept: Workday AI for Universal Main Subscription Agreement Customers.
- MSA, your organization must opt in to UMSA and enable this feature through Innovation Services.
UMSA is required for non-production and production tenants for Workday-Built agents. UMSA is not required for non-production tenants for self-built agents.
For information about how using agents impacts your Flex Credits, see: Workday Flex Credits Community page.
To use this functionality, you must:
- Sign the Universal Main Subscription Agreement (UMSA).When you sign the agreement, Workday provides your organization with complimentary Flex Credits that you can use towards Sana Core for Workday. Once you reach the allotted complimentary Flex Credit consumption, you must sign the Workday Flex Credits and Platform Entitlement Policy to continue to use Sana Core for Workday.
- Purchase the Core Human Capital Management or Core Financials SKU. This only applies to Sana Core.
- Sign the Workday Flex Credits and Platform Entitlement Policy. This only applies to Sana Enterprise.
- Purchase the Sana Enterprise SKU. This only applies to Sana Enterprise.
Security: These domains in the System functional area:
- Sana Agent User Provisioning
- Sana Enterprise
- Security Activation
- Security Configuration
To ensure security setup for Sana and the related AI agents is complete, Workday sends notifications to administrators. We notify:
- Workday security administrators to complete theSet Up AI Admin Security Permissionstask.
- Agent System of Record administrators to configure and activate theSelf-Service Agent.
- Sana administrators to optionally configure or modify default settings in theSana Workspace.
- User provisioning administrators to provision employees toSana.
- Edit Domain Security Policies.Configure theSana Enterprisedomain in the System functional area.This step is required if your organization purchased the Sana Enterprise SKU. This domain configuration determines who can use cross-system connections and Sana Enterprise features.
- (Optional) Access theSet Up Security Groups for User Provisioningtask. If you only want particular security groups to be available for Sana provisioning, add rows to the grid and select the groups to enable on theSecurity Groupsprompt.Security:Set Up: User Provisioningdomain in the System and User Provisioning functional areas.
- Provision users to Sana Workspace.We notify user provisioning administrators to provision users to the Sana Workspace.
- In Workday, open theAction Required: Provision Users to Sana Workspacenotification from the bell icon.
- Click the link in the notification to open theUser Provisioning Workspace.
- On theProductspage, clickConfigurein theSanatile.
- In theProvision Userssection, clickEdit Provisioning Group.
- In theUsing Workday Security Groupsprompt, select either:
- Allto provision all users for Sana.
- Individual security groups to provision. You can only select individual security groups if you set them up for user provisioning on theSet Up Security Groups for User Provisioningtask.
- ClickUpdate Provisioning Group.
- ClickPreview and Enable Sync.
- Review the users who will be provisioned, select the confirmation check box, and clickEnable Sync.
After sync is enabled, users in the selected security groups are automatically provisioned and can sign in to the Sana Workspace. - Enable access to the Sana Workspace from Workday.To make it easy for users to find and access the Sana Workspace from your Workday tenant, enable theSanacard on the Home page:
- On the Home Cards Workspace, clickHome.
- ClickCards.
- ClickEdit Work Tools.
- In theEdit Work Toolspop up, add a row to the grid.
- In theNamefield, enterSana.
- ClickOK.
- (Optional) Configure the Sana Workspace.
- From the Sana Workspace, click the arrow next to the workspace name in the navigation menu.
- ClickWorkspace Settings.
- (Optional) Configure optional settings. You can:
- Disable web search.
- Disable intercom support chat.
- Disable specific third-party connectors. (Sana Enterprise only.)
- Restrict agentic actions to approved email domains. (Sana Enterprise only.)
Users can immediately access Sana from Workday and use Sana capabilities.